Splunk Administration

Splunk Administration
Category Activity
mctester
In the Free vs. Enterprise license comparison it says there's no limit on indexing in Enterprise license, but in the ...
by mctester Communicator in Installation 07-02-2010
0 2
0
2
Genti
"Hi support I am receiving a lot of these messages in my light forwarder's splunkd.log 06-29-2010 14:27:05.615 ERROR ...
by Genti Splunk Employee Splunk Employee in Monitoring Splunk 07-02-2010
2 1
2
1
rsimmons
error message: 06-14-2010 13:30:25.371 WARN ProcessDispatchedSearch - PROCESS_SEARCH what(): index configuration pat...
by rsimmons Splunk Employee Splunk Employee in Deployment Architecture 07-01-2010
2 1
2
1
mctester
I have a simple question about the two splunk solaris (sparc) packages you provide. On the left side of the downloa...
by mctester Communicator in Installation 07-01-2010
2 5
2
5
frank_h
on a mac os x server, I am trying to add a directory as input. I encounter the following error when trying to save th...
by frank_h New Member in Monitoring Splunk 07-01-2010
0 1
0
1
muebel
If I make a change to a view in an app, I can activate that change by reloading the app. If I make a change to the s...
by SplunkTrust SplunkTrust in Deployment Architecture 07-01-2010
5 1
5
1
simuvid
If I use lea_opsec to gather Checkpoint informations, I can define a simple data input for that. But if I get Logeve...
by simuvid Splunk Employee Splunk Employee in Getting Data In 07-01-2010
0 1
0
1
simuvid
Is there any possibility to run an Splunk Forwarder on a Windows 2008 Domain Controller so that the Forwarder is runn...
by simuvid Splunk Employee Splunk Employee in Getting Data In 07-01-2010
1 3
1
3
mihika
I configured a linux forwarder. The receiving one is a windows splunk server. The splunkd.log says that events are d...
by mihika Engager in Getting Data In 06-30-2010
0 1
0
1
astsgops
Relatively new to splunk. I have a csv that has been splunked and splunk extracted the header record and assigned the...
by astsgops New Member in Getting Data In 06-30-2010
0 1
0
1
oreoshake
unix [monitor:///etc] unix _blacklist = (/etc/shadow) system _rcvbuf = 1572864 unix _whitelist ...
by oreoshake Communicator in Getting Data In 06-30-2010
1 8
1
8
Derek
Hi, How can I stop the loading of splunk-regmon? I'm getting these errors: ERROR ExecProcessor - message from ...
by Derek Path Finder in Getting Data In 06-30-2010
1 4
1
4
hiwell
Hello, I created a windows executable which reads lines from a file and outputs to console and made Splunk run this ...
by hiwell Explorer in Getting Data In 06-29-2010
0 4
0
4
hcpr
Hi folks. I have a Splunk setup to authenticate by LDAP, and this works reasonably well. Sometimes auth stops workin...
by hcpr Path Finder in Security 06-29-2010
2 4
2
4
kmaynard616
I have a log that looks like this: 2010/06/28 12:44:21 - -ERROR(Version: 1.0 Buildguy from 2009-05-12 08.45.26) : 2...
by kmaynard616 Engager in Getting Data In 06-29-2010
1 1
1
1
silvermail
Hello guys, I am estimating to receive firewall events of ~200K EPS from 10 core firewalls. My initial thoughts are ...
by silvermail Path Finder in Getting Data In 06-29-2010
3 5
3
5
muebel
On every view in the webgui I have a blue stripe notifying me of an unconfigured or disabled index. This issue seems...
by SplunkTrust SplunkTrust in Security 06-29-2010
2 6
2
6
muebel
How could I the capture firmware version of a Dell chassis/blade etc. and index it into Splunk?
by SplunkTrust SplunkTrust in Getting Data In 06-29-2010
0 3
0
3
omlojoha
Does someone know how much memory and CPU the Splunk agent uses when installed under HP-Ux? And how does the Splunk A...
by omlojoha Engager in Monitoring Splunk 06-29-2010
0 3
0
3
sdwilkerson
Working with a group doing radiusScripted authentication. We upgraded to 4.1.3 today from 4.1.2 and I noticed this i...
by sdwilkerson Contributor in Security 06-29-2010
1 7
1
7
twinspop
I'm running a mail delivery test from outside our network to watch for long delays on delivery. Splunk is all set to ...
by twinspop Influencer in Getting Data In 06-29-2010
0 4
0
4
aaronnicoli
Hi all, I have a fairly basic (but confusing) question for you all. Essentially, this is the go...: For a prod Apac...
by aaronnicoli Path Finder in Getting Data In 06-29-2010
1 5
1
5
cmeo
I'm in the process of figuring out the cisco-related apps and add-ons, and one notable point is that by default 10.* ...
by cmeo Contributor in Getting Data In 06-29-2010
1 2
1
2
Ellen
After 4.1.2 on the Splunk UI login, I noticed under Firefox 3.6.x the browser prompt for 'Do you want Firefox to rem...
by Ellen Splunk Employee Splunk Employee in Security 06-28-2010
3 1
3
1
Jeremiah
Is there a maximum number of forwarders that a single indexer can support, or is the limiting factor on the indexer j...
by Jeremiah Motivator in Getting Data In 06-28-2010
1 5
1
5
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.
Get Updates on the Splunk Community!

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...
Top Karma Authors